cypress-image-snapshot shows visual... CVE-2023-38695

- AV AC AU C I A
发布: 2023-08-04
修订: 2023-08-09

cypress-image-snapshot shows visual regressions in Cypress with jest-image-snapshot. Prior to version 8.0.2, it's possible for a user to pass a relative file path for the snapshot name and reach outside of the project directory into the machine running the test. This issue has been patched in version 8.0.2.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息